Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\EFS] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\WlS0WndH] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\WlS0WndH] 'ImagePath' = '"%WINDIR%\SysWOW64\dbghelp\WlS0WndH.exe"'
- 'WlS0WndH' "%WINDIR%\SysWOW64\dbghelp\WlS0WndH.exe"
- 'WlS0WndH' %WINDIR%\SysWOW64\dbghelp\WlS0WndH.exe
- из <Полный путь к файлу> в %WINDIR%\syswow64\dbghelp\wls0wndh.exe
- '15#.#2.75.74':443
- http://15#.##.75.74:443/0WJF1efubuxzP1/jRtqloz9qrcB/Xm0hPqnuj6Ewed/a5kti8ys/Ms969a0/ via 15#.#2.75.74